Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Picotcp HIGH 7.5
CVE-2023-30463

Altran picoTCP through 1.7.0 allows memory corruption (and subsequent denial of service) because of an integer overflow in pico_ipv6_alloc when proce…

Fix: after 1.7.0
Fix from $1,950 2023-04-19
Picotcp CRITICAL 9.8
CVE-2021-33304

Double Free vulnerability in virtualsquare picoTCP v1.7.0 and picoTCP-NG v2.1 in modules/pico_fragments.c in function pico_fragments_reassemble, allo…

Patch available
Fix from $2,300 2023-02-15
Picotcp CRITICAL 9.1
CVE-2020-24341

An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. The TCP input data processing function in pico_tcp.c does not validate the length of…

Fix: after 1.7.0
Fix from $2,300 2020-12-11
Picotcp HIGH 7.5
CVE-2020-24339

An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. The DNS domain name record decompression functionality in pico_dns_decompress_name()…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp HIGH 7.5
CVE-2020-24340

An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. The code that processes DNS responses in pico_mdns_handle_data_as_answers_generic() …

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp CRITICAL 9.8
CVE-2020-24338EPSS 36%

An issue was discovered in picoTCP through 1.7.0. The DNS domain name record decompression functionality in pico_dns_decompress_name() in pico_dns_co…

Fix: after 1.7.0
Fix from $2,300 2020-12-11
Picotcp CRITICAL 9.1
CVE-2020-17441EPSS 7%

An issue was discovered in picoTCP 1.7.0. The code for processing the IPv6 headers does not validate whether the IPv6 payload length field is equal t…

Fix: 3.7.0+
Fix from $2,300 2020-12-11
Picotcp HIGH 7.5
CVE-2020-17442

An issue was discovered in picoTCP 1.7.0. The code for parsing the hop-by-hop IPv6 extension headers does not validate the bounds of the extension he…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp HIGH 7.5
CVE-2020-17443

An issue was discovered in picoTCP 1.7.0. The code for creating an ICMPv6 echo replies doesn't check whether the ICMPv6 echo request packet's size is…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp HIGH 7.5
CVE-2020-17444

An issue was discovered in picoTCP 1.7.0. The routine for processing the next header field (and deducing whether the IPv6 extension headers are valid…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp HIGH 7.5
CVE-2020-17445

An issue was discovered in picoTCP 1.7.0. The code for processing the IPv6 destination options does not check for a valid length of the destination o…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp HIGH 7.5
CVE-2020-24337

An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. When an unsupported TCP option with zero length is provided in an incoming TCP packe…

Fix: after 1.7.0
Fix from $1,950 2020-12-11
Picotcp CRITICAL 9.8
CVE-2017-1000210

picoTCP (versions 1.7.0 - 1.5.0) is vulnerable to stack buffer overflow resulting in code execution or denial of service attack

Patch available
Fix from $2,300 2017-11-17